-
Notifications
You must be signed in to change notification settings - Fork 247
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Bump the backend group across 1 directory with 11 updates #4315
Open
dependabot
wants to merge
1
commit into
master
Choose a base branch
from
dependabot/go_modules/backend-ab0cdaafe9
base: master
Could not load branches
Branch not found: {{ refName }}
Loading
Could not load tags
Nothing to show
Loading
Are you sure you want to change the base?
Some commits from the old base branch may be removed from the timeline,
and old review comments may become outdated.
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Bumps the backend group with 9 updates in the / directory: | Package | From | To | | --- | --- | --- | | [github.com/aquasecurity/trivy](https://github.com/aquasecurity/trivy) | `0.59.1` | `0.60.0` | | [github.com/go-git/go-git/v5](https://github.com/go-git/go-git) | `5.13.2` | `5.14.0` | | [github.com/open-policy-agent/opa](https://github.com/open-policy-agent/opa) | `1.1.0` | `1.2.0` | | [github.com/opencontainers/image-spec](https://github.com/opencontainers/image-spec) | `1.1.0` | `1.1.1` | | [github.com/operator-framework/api](https://github.com/operator-framework/api) | `0.29.0` | `0.30.0` | | [github.com/prometheus/client_golang](https://github.com/prometheus/client_golang) | `1.21.0` | `1.21.1` | | [github.com/tektoncd/pipeline](https://github.com/tektoncd/pipeline) | `0.68.0` | `0.69.0` | | [golang.org/x/text](https://github.com/golang/text) | `0.22.0` | `0.23.0` | | [google.golang.org/api](https://github.com/googleapis/google-api-go-client) | `0.222.0` | `0.224.0` | Updates `github.com/aquasecurity/trivy` from 0.59.1 to 0.60.0 - [Release notes](https://github.com/aquasecurity/trivy/releases) - [Changelog](https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md) - [Commits](aquasecurity/trivy@v0.59.1...v0.60.0) Updates `github.com/go-git/go-git/v5` from 5.13.2 to 5.14.0 - [Release notes](https://github.com/go-git/go-git/releases) - [Commits](go-git/go-git@v5.13.2...v5.14.0) Updates `github.com/open-policy-agent/opa` from 1.1.0 to 1.2.0 - [Release notes](https://github.com/open-policy-agent/opa/releases) - [Changelog](https://github.com/open-policy-agent/opa/blob/main/CHANGELOG.md) - [Commits](open-policy-agent/opa@v1.1.0...v1.2.0) Updates `github.com/opencontainers/image-spec` from 1.1.0 to 1.1.1 - [Release notes](https://github.com/opencontainers/image-spec/releases) - [Changelog](https://github.com/opencontainers/image-spec/blob/main/RELEASES.md) - [Commits](opencontainers/image-spec@v1.1.0...v1.1.1) Updates `github.com/operator-framework/api` from 0.29.0 to 0.30.0 - [Release notes](https://github.com/operator-framework/api/releases) - [Changelog](https://github.com/operator-framework/api/blob/master/RELEASE.md) - [Commits](operator-framework/api@v0.29.0...v0.30.0) Updates `github.com/prometheus/client_golang` from 1.21.0 to 1.21.1 - [Release notes](https://github.com/prometheus/client_golang/releases) - [Changelog](https://github.com/prometheus/client_golang/blob/main/CHANGELOG.md) - [Commits](prometheus/client_golang@v1.21.0...v1.21.1) Updates `github.com/tektoncd/pipeline` from 0.68.0 to 0.69.0 - [Release notes](https://github.com/tektoncd/pipeline/releases) - [Changelog](https://github.com/tektoncd/pipeline/blob/main/releases.md) - [Commits](tektoncd/pipeline@v0.68.0...v0.69.0) Updates `golang.org/x/crypto` from 0.34.0 to 0.35.0 - [Commits](golang/crypto@v0.34.0...v0.35.0) Updates `golang.org/x/oauth2` from 0.26.0 to 0.27.0 - [Commits](golang/oauth2@v0.26.0...v0.27.0) Updates `golang.org/x/text` from 0.22.0 to 0.23.0 - [Release notes](https://github.com/golang/text/releases) - [Commits](golang/text@v0.22.0...v0.23.0) Updates `google.golang.org/api` from 0.222.0 to 0.224.0 - [Release notes](https://github.com/googleapis/google-api-go-client/releases) - [Changelog](https://github.com/googleapis/google-api-go-client/blob/main/CHANGES.md) - [Commits](googleapis/google-api-go-client@v0.222.0...v0.224.0) --- updated-dependencies: - dependency-name: github.com/aquasecurity/trivy dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: github.com/go-git/go-git/v5 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: github.com/open-policy-agent/opa dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: github.com/opencontainers/image-spec dependency-type: direct:production update-type: version-update:semver-patch dependency-group: backend - dependency-name: github.com/operator-framework/api dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: github.com/prometheus/client_golang dependency-type: direct:production update-type: version-update:semver-patch dependency-group: backend - dependency-name: github.com/tektoncd/pipeline dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: golang.org/x/crypto dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: golang.org/x/oauth2 dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: golang.org/x/text dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend - dependency-name: google.golang.org/api dependency-type: direct:production update-type: version-update:semver-minor dependency-group: backend ... Signed-off-by: dependabot[bot] <[email protected]>
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
0 participants
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps the backend group with 9 updates in the / directory:
0.59.1
0.60.0
5.13.2
5.14.0
1.1.0
1.2.0
1.1.0
1.1.1
0.29.0
0.30.0
1.21.0
1.21.1
0.68.0
0.69.0
0.22.0
0.23.0
0.222.0
0.224.0
Updates
github.com/aquasecurity/trivy
from 0.59.1 to 0.60.0Release notes
Sourced from github.com/aquasecurity/trivy's releases.
Changelog
Sourced from github.com/aquasecurity/trivy's changelog.
... (truncated)
Commits
a4009f6
release: v0.60.0 [main] (#8327)85cca8c
fix(sbom): improve logic for binding direct dependency to parent component (#...9892d04
chore(deps): remove missed replace oftrivy-db
(#8492)8a89b2b
chore(deps): bump alpine from 3.21.0 to 3.21.3 in the docker group across 1 d...57b08d6
chore(deps): update Go to 1.24 and switch to go-version-file (#8388)453c66d
docs: add abbreviation list (#8453)f670602
chore(terraform): assign *terraform.Module 'parent' field (#8444)dd54f80
feat: add report summary table (#8177)ab1cf03
chore(deps): bump the github-actions group with 3 updates (#8473)1f85b27
refactor(vex): improve SBOM reference handling with project standards (#8457)Updates
github.com/go-git/go-git/v5
from 5.13.2 to 5.14.0Release notes
Sourced from github.com/go-git/go-git/v5's releases.
Commits
863c621
Merge pull request #1436 from pjbgf/v5-bumps2e69e81
build: Bump dependenciesb2c1ec9
build: Bump Go versionsUpdates
github.com/open-policy-agent/opa
from 1.1.0 to 1.2.0Release notes
Sourced from github.com/open-policy-agent/opa's releases.
... (truncated)
Changelog
Sourced from github.com/open-policy-agent/opa's changelog.
... (truncated)
Commits
d537788
Release v1.2.0 (#7403)d6b8e6d
perf: various small improvements (#7357)e46696e
ci: Usingfetch-depth
when fetching tags (#7400)85eaacd
docs: Add note about v1.0 addr behaviour (#7398)83c8e0e
ci: Addingfetch-tags
underwith
in GHA (#7397)10d1a54
Explicitly fetching fetching git tags for CI builds (#7395)6088316
build(deps): bump github.com/containerd/containerd from 1.7.25 to 1.7.26 (#7392)3ab892f
docs: Update homepage examples to drop v1 import (#7391)bad1b1a
build(deps): bump github.com/prometheus/client_golang (#7375)e75f583
build(deps): bump actions/download-artifact from 4.1.8 to 4.1.9 (#7389)Updates
github.com/opencontainers/image-spec
from 1.1.0 to 1.1.1Release notes
Sourced from github.com/opencontainers/image-spec's releases.
Commits
147f9c1
Release v1.1.1fbb4662
Merge pull request #1238 from mkenigs/wording-nit81e457e
Fix grammar nit92353b0
Merge pull request #1225 from sudo-bmitch/pr-doc-go-version1a0b9f9
Merge pull request #1230 from sudo-bmitch/pr-layout-extensibilityf272635
Merge pull request #1228 from sudo-bmitch/pr-mixed-digest-algoe0462ab
Merge pull request #1229 from tianon/setup-gocf536e3
Merge pull request #1227 from sudo-bmitch/pr-rm-project-doc60acaac
Document extensibility of the image layout4dcf962
Document Go version policyUpdates
github.com/operator-framework/api
from 0.29.0 to 0.30.0Release notes
Sourced from github.com/operator-framework/api's releases.
Commits
5d816f1
Upgrade controller-gen from v0.17.0 to v0.17.2 (#411)d75a9bd
upgraded google.golang.org/genproto/googleapis/api v0.0.0-20240826202546-f639...4107e57
Upgrade YQ version used from v4.28.1 to v4.45.1 (#412)f522173
upgraded golang.org/x/oauth2 v0.23.0 => v0.27.0 (#408)49dc30a
Bump sigs.k8s.io/controller-runtime from 0.20.1 to 0.20.2 (#405)bc26bc0
Bump github.com/spf13/cobra from 1.8.1 to 1.9.1 (#406)93aa09f
Bump k8s libs to v0.32.2 (#404)b4021ba
OCPBUGS#30001: Fix catalogsource typo for API docs (#402)1ed2691
Bump sigs.k8s.io/controller-runtime from 0.20.0 to 0.20.1 (#400)0879cf0
Bump sigs.k8s.io/controller-runtime from 0.19.4 to 0.20.0 (#396)Updates
github.com/prometheus/client_golang
from 1.21.0 to 1.21.1Release notes
Sourced from github.com/prometheus/client_golang's releases.
Changelog
Sourced from github.com/prometheus/client_golang's changelog.
Commits
8a42da3
Fix ios build. (#1758)40c62f7
Merge pull request #1757 from prometheus/revert-121cas689f590
Cut 1.21.19e567a7
Revert "Add: exponential backoff for CAS operations on floats (#1661)"Updates
github.com/tektoncd/pipeline
from 0.68.0 to 0.69.0Release notes
Sourced from github.com/tektoncd/pipeline's releases.
... (truncated)
Commits
5b082b1
build(deps): bump k8s.io/client-go from 0.31.4 to 0.31.6192317d
build(deps): bump github.com/google/go-cmp from 0.6.0 to 0.7.01d2ea8b
build(deps): bump k8s.io/code-generator from 0.31.4 to 0.31.6e32aef2
build(deps): bump github.com/sigstore/sigstore/pkg/signature/kms/azure81f8bf7
build(deps): bump the all group in /tekton with 2 updates17f79a9
build(deps): bump github.com/go-jose/go-jose/v3 from 3.0.3 to 3.0.4c6449b7
build(deps): bump actions/cache from 4.2.1 to 4.2.2339f421
build(deps): bump tj-actions/changed-files from 45.0.6 to 45.0.725a6227
add disable_spire build tag for entrypoint command60cdce8
chore: add yaml linting to pre-commitUpdates
golang.org/x/crypto
from 0.34.0 to 0.35.0Commits
7292932
ssh: limit the size of the internal packet queue while waiting for KEXUpdates
golang.org/x/oauth2
from 0.26.0 to 0.27.0Commits
681b4d8
jws: split token into fixed number of parts3f78298
all: upgrade go directive to at least 1.23.0 [generated]109dabf
endpoints: add links/provider for Discordac571fa
oauth2: fix docs for Config.DeviceAuth314ee5b
endpoints: add patreon endpointUpdates
golang.org/x/text
from 0.22.0 to 0.23.0Commits
566b44f
go.mod: update golang.org/x dependenciesd5156da
collate/build: do not use println in tests221d88c
x/text: fix scientific notation by removing extraneous spacesb18c107
internal/export/unicode: change C comment to mention unassigned code points835f8ac
language: use a more straightforward return valueae68efb
internal/export/unicode: add CategoryAliases, Cn, and LC518d9c0
all: upgrade go directive to at least 1.23.0 [generated]Updates
google.golang.org/api
from 0.222.0 to 0.224.0Release notes
Sourced from google.golang.org/api's releases.
Changelog
Sourced from google.golang.org/api's changelog.
Commits
92f5723
chore(main): release 0.224.0 (#3039)78b9a2c
chore: update background context to todo (#3046)f10c130
feat(all): auto-regenerate discovery clients (#3051)10cb1ef
fix(transport/http): Add user agent to request headers (#3050)0f2af0f
feat(all): auto-regenerate discovery clients (#3048)e878018
chore(all): update all (#3044)eaeb698
feat(all): auto-regenerate discovery clients (#3043)7d1e850
feat(all): auto-regenerate discovery clients (#3042)3795b39
feat(all): auto-regenerate discovery clients (#3041)3acb9e0
feat(all): auto-regenerate discovery clients (#3040)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions